cbcvebase.

Tenda Ac6 Firmware vulnerabilities

108 known vulnerabilities affecting tenda/ac6_firmware.

Total CVEs
108
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL56HIGH41MEDIUM11

Vulnerabilities

Page 5 of 6
CVE-2025-70252P3HIGHCVSS 7.5v15.03.06.23_multi2026-03-02
CVE-2025-70252 [HIGH] CWE-121 CVE-2025-70252: An issue was discovered in /goform/WifiWpsStart in Tenda AC6V2.0 V15.03.06.23_multi. The index and m An issue was discovered in /goform/WifiWpsStart in Tenda AC6V2.0 V15.03.06.23_multi. The index and mode are controllable. If the conditions are met to sprintf, they will be spliced into tmp. It is worth noting that there is no size check,which leads to a stack overflow vulnerability.
nvd
CVE-2025-24496P3HIGHCVSS 7.5v02.03.01.1102025-08-20
CVE-2025-24496 [HIGH] CWE-288 CVE-2025-24496: An information disclosure vulnerability exists in the /goform/getproductInfo functionality of Tenda An information disclosure vulnerability exists in the /goform/getproductInfo functionality of Tenda AC6 V5.0 V02.03.01.110. Specially crafted network packets can lead to a disclosure of sensitive information. An attacker can send packets to trigger this vulnerability.
nvd
CVE-2025-55483P3HIGHCVSS 7.5v15.03.06.232025-08-20
CVE-2025-55483 [HIGH] CWE-121 CVE-2025-55483: Tenda AC6 V15.03.06.23_multi is vulnerable to Buffer Overflow in the function formSetMacFilterCfg vi Tenda AC6 V15.03.06.23_multi is vulnerable to Buffer Overflow in the function formSetMacFilterCfg via the parameters macFilterType and deviceList.
nvd
CVE-2025-55482P3HIGHCVSS 7.5v15.03.06.23_multi2025-08-20
CVE-2025-55482 [HIGH] CWE-121 CVE-2025-55482: Tenda AC6 V15.03.06.23_multi is vulnerable to Buffer Overflow in the formSetCfm function. Tenda AC6 V15.03.06.23_multi is vulnerable to Buffer Overflow in the formSetCfm function.
nvd
CVE-2025-50528P3HIGHCVSS 7.3≤ 15.03.05.192025-06-27
CVE-2025-50528 [HIGH] CWE-121 CVE-2025-50528: A buffer overflow vulnerability exists in the fromNatStaticSetting function of Tenda AC6 <=V15.03.05 A buffer overflow vulnerability exists in the fromNatStaticSetting function of Tenda AC6 <=V15.03.05.19 via the page parameter.
nvd
CVE-2022-45641P3HIGHCVSS 7.5v15.03.05.192022-12-02
CVE-2022-45641 [HIGH] CWE-120 CVE-2022-45641: Tenda AC6V1.0 V15.03.05.19 is vulnerable to Buffer Overflow via formSetMacFilterCfg. Tenda AC6V1.0 V15.03.05.19 is vulnerable to Buffer Overflow via formSetMacFilterCfg.
nvd
CVE-2025-60338P3HIGHCVSS 7.5v15.03.06.502025-10-22
CVE-2025-60338 [HIGH] CWE-787 CVE-2025-60338: Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the D Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the DhcpListClient function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
nvd
CVE-2025-60341P3HIGHCVSS 7.5v15.03.06.502025-10-22
CVE-2025-60341 [HIGH] CWE-787 CVE-2025-60341: Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the ssid parameter in the f Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the ssid parameter in the fast_setting_wifi_set function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
nvd
CVE-2025-55499P3MEDIUMCVSS 6.5v15.03.06.232025-08-20
CVE-2025-55499 [MEDIUM] CWE-120 CVE-2025-55499: Tenda AC6 V15.03.06.23_multi was discovered to contain a buffer overflow via the ntpServer parameter Tenda AC6 V15.03.06.23_multi was discovered to contain a buffer overflow via the ntpServer parameter in the fromSetSysTime function.
nvd
CVE-2025-60342P3HIGHCVSS 7.5v15.03.06.502025-10-22
CVE-2025-60342 [HIGH] CWE-787 CVE-2025-60342: Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the a Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in the addressNat function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
nvd
CVE-2025-30256P3HIGHCVSS 7.5v02.03.01.1102025-08-20
CVE-2025-30256 [HIGH] CWE-772 CVE-2025-30256: A denial of service vulnerability exists in the HTTP Header Parsing functionality of Tenda AC6 V5.0 A denial of service vulnerability exists in the HTTP Header Parsing functionality of Tenda AC6 V5.0 V02.03.01.110. A specially crafted series of HTTP requests can lead to a reboot. An attacker can send multiple network packets to trigger this vulnerability.
nvd
CVE-2025-50641P3MEDIUMCVSS 6.5v15.03.05.16_multi2025-07-01
CVE-2025-50641 [MEDIUM] CWE-120 CVE-2025-50641: Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the addWifiMacFilter function via th Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the addWifiMacFilter function via the parameter deviceId.
nvd
CVE-2020-28095P3HIGHCVSS 7.5v15.03.06.512020-12-30
CVE-2020-28095 [HIGH] CWE-835 CVE-2020-28095: On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the change On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the change password API will trigger the router to crash and enter an infinite boot loop.
nvd
CVE-2022-45640P3HIGHCVSS 7.5v15.03.05.192022-12-01
CVE-2022-45640 [HIGH] CWE-787 CVE-2022-45640: Tenda Tenda AC6V1.0 V15.03.05.19 is affected by buffer overflow. Causes a denial of service (local). Tenda Tenda AC6V1.0 V15.03.05.19 is affected by buffer overflow. Causes a denial of service (local).
nvd
CVE-2025-57528P3HIGHCVSS 7.7v15.03.05.162025-09-19
CVE-2025-57528 [HIGH] CWE-20 CVE-2025-57528: An issue was discovered in Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01 allowing attackers to caus An issue was discovered in Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01 allowing attackers to cause a denial of service via the funcname, funcpara1, funcpara2 parameters to the formSetCfm function (uri path: SetCfm).
nvd
CVE-2025-60337P3HIGHCVSS 7.5v15.03.06.502025-10-22
CVE-2025-60337 [HIGH] CWE-787 CVE-2025-60337: Tenda AC6 V2.0 15.03.06.50 was discovered to contain a buffer overflow in the speed_dir parameter in Tenda AC6 V2.0 15.03.06.50 was discovered to contain a buffer overflow in the speed_dir parameter in the SetSpeedWan function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
nvd
CVE-2025-44172P3MEDIUMCVSS 6.5v15.03.05.162025-06-02
CVE-2025-44172 [MEDIUM] CWE-121 CVE-2025-44172: Tenda AC6 V15.03.05.16 was discovered to contain a stack overflow via the time parameter in the setS Tenda AC6 V15.03.05.16 was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement function.
nvd
CVE-2025-55495P3MEDIUMCVSS 6.5v15.03.06.23_multi2025-08-27
CVE-2025-55495 [MEDIUM] CWE-120 CVE-2025-55495: Tenda AC6 V15.03.06.23_multi was discovered to contain a buffer overflow via the list parameter in t Tenda AC6 V15.03.06.23_multi was discovered to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.
nvd
CVE-2025-60343P3HIGHCVSS 7.5v15.03.06.502025-10-22
CVE-2025-60343 [HIGH] CWE-120 CVE-2025-60343: Multiple buffer overflows in the AdvSetMacMtuWan function of Tenda AC6 v.15.03.06.50 allows attacker Multiple buffer overflows in the AdvSetMacMtuWan function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the wanMTU, wanSpeed, cloneType, mac, serviceName, serverName, wanMTU2, wanSpeed2, cloneType2, mac2, serviceName2, and serverName2 parameters.
nvd
CVE-2025-60339P3HIGHCVSS 7.5v15.03.06.502025-10-22
CVE-2025-60339 [HIGH] CWE-787 CVE-2025-60339: Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v.15.03.06.50 al Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v.15.03.06.50 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the schedStartTime and schedEndTime parameters.
nvd
Tenda Ac6 Firmware vulnerabilities | cvebase